The managing Central Management System appliance automatically checks for new Intelligent Virtual Execution - Server system images and guest images versions. Updates should be performed from the managing Central Management System appliance and orchestrated as described in the Distributed Network Security IVX Smart Grid Guide.
The IVX server checks for new security content versions, and if configured, automatically downloads and installs them. For more information, see Updating security content and Configuring automatic security updates .
Important
IVX nodes that are part of a cluster should not be upgraded individually. Upgrade clusters using the Central Management System Web UI only. See the Distributed Network Security IVX Smart Grid Guide.
Important
All Intelligent Virtual Execution - Server appliances in an MVX cluster must run the same system image, guest images, and security content.
On IVX servers, do not attempt an upgrade while running an Enterprise Search or data acquisition request.
If you try to start a DMZ server that has not been upgraded to the same version as the IVX server, errors will result.
After upgrading your IVX software, you should immediately upgrade your associated DMZ server software. When the upgrades are complete, the DMZ server should be booted (restarted) before the server. See Endpoint Security Server boot order .
If your server is in relay mode when it is upgraded, you must re-enable relay mode after the upgrade. See (Optional) reenable Endpoint Security relay mode .
If you need to revert your server to the preceding version of Endpoint Security software after an upgrade, contact Trellix Technical Support for assistance.
Note
Refer to the Trellix DTI Offline Update Portal Guide for upgrade instructions if your server is offline and cannot download updates from the DTI network.
Upgrade times vary, based on the operating environment at your site and the size of the server database.
Do not reboot your server during an upgrade, unless prompted to do so.